AIThis post was created with the assistance of artificial intelligence (AI).

TL;DR

Prime Big Deal Days · Oct 6–7Offer from Amazon

Get the latest gadgets delivered free — and shop member deals

  • Fast, free delivery on millions of items
  • Access to Prime Big Deal Days deals on October 6–7
  • Prime Video, Amazon Music and more included
Start your free Prime trial Free trial for eligible customers · Cancel anytime
As an affiliate, we earn on qualifying purchases.

A public exploit chain dubbed ‘Relapse’ has been released on GitHub, targeting PlayStation 5 consoles running firmware versions 7.00 through 13.60. It chains a WebKit browser vulnerability with a kernel race condition to gain kernel read/write access, though the release warns of instability and is framed as research-only.

A public exploit chain dubbed Relapse has been released on GitHub, targeting PlayStation 5 consoles running firmware versions 7.00 through 13.60. The release, published by researcher ntfargo with more than a dozen credited collaborators, combines a browser-stage vulnerability with a kernel exploit to gain kernel read/write access on the console. The project’s disclaimer states it is intended for educational and security research purposes only and does not endorse piracy or unauthorized access.

According to the project’s GitHub documentation, Relapse is a two-stage exploit chain. The browser stage exploits the PS5’s WebKit-based browser, using what the authors describe as JavaScriptCore information leaks and a structured clone object pool mismatch to corrupt a typed array. The kernel stage then combines an address leak with a use-after-free race condition in a subsystem identified as aio_multi_wait to establish arbitrary kernel read and write privileges.

The supported firmware range is stated as 7.00 through 13.60. After a successful run, the documentation says, an ELF loader listens on port 9021, allowing custom code to be run on the console. The project can be served locally via a Python script or accessed through a hosted web page opened in the PS5 browser.

The authors are explicit that the exploit is unreliable. The documentation notes the WebKit stage may need several attempts and advises reloading the page if the browser stalls. More seriously, it warns that the kernel exploit may hang or panic the console, requiring a reboot before retrying. The disclaimer also lists system instability, data loss, and account bans among the risks users assume, and states the maintainers accept no liability for resulting damage.

At a glance
announcementWhen: released publicly on GitHub; current st…
The developmentA full browser-to-kernel exploit chain for PS5 firmwares 7.00–13.60 was published publicly on GitHub by researcher ntfargo and credited collaborators.
Top Steam deals right now
Persona 3 Reload-70%$17.99
Persona 5 Royal-70%$17.99
The Witcher 3: Wild Hunt — Remastered-50%$24.99
DARK SOULS III Deluxe Edition-50%$42.49
DARK SOULS™: REMASTERED-50%$19.99
Dune: Awakening-50%$24.99
DARK SOULS™ II: Scholar of the First Sin-50%$19.99
The Last of Us™ Part II Remastered-33%$33.49
Live · Steam store (current discounts)

Impact on PS5 Homebrew and Security

The release matters because it covers an unusually wide firmware range — roughly six years of PS5 system software — which means a large installed base of consoles, including many that were never updated past their shipped firmware, fall within the stated scope. Full public kernel exploits for the PS5 have been rare, and each prior release has shaped the trajectory of the homebrew and security research scenes around the platform.

For security researchers, the technical write-up documents two distinct vulnerability classes — a WebKit memory corruption primitive and a kernel use-after-free race — that may inform broader study of similar code. For Sony, the release is likely to accelerate the cat-and-mouse cycle: the company has historically patched publicly disclosed exploits in subsequent firmware updates, and consoles that stay on affected firmware versions to retain exploit access lose access to online features and current games.

For ordinary players, the practical relevance is limited and the risks are concrete. The authors themselves warn of panics, instability, and potential account bans, and running unsigned code on a networked console can violate Sony’s terms of service.

Amazon

Top picks for "relapse exploit"

As an affiliate, we earn on qualifying purchases.

Prior PS5 Exploit Releases

The PS5 has seen a slow drip of public exploit research since launch. Earlier work, including disclosures by credited researchers such as TheFlow and Sleirsgoevy — both named in the Relapse credits — established initial footholds on older firmware versions, typically limited to specific system software revisions. Kernel-level access on broader firmware ranges has remained the harder problem.

Relapse builds on a substantial body of shared research. The credits list more than a dozen contributors — ufm42, Sonic_Iso, Jordy, Dr. Yenyen, SlidyBat, Flatz, cow, nhk, bollarz, EchoStretch, and EarthOnion, alongside ntfargo, TheFlow, and Sleirsgoevy — reflecting the collaborative, incremental nature of console security research, where primitives discovered by one researcher are often chained into fuller exploits by others.

“This project is intended for educational and security research purposes only. It does not endorse piracy, unauthorized access, or misuse of commercial devices.”

— Relapse-Exploit GitHub repository, disclaimer

Unverified Claims and Open Questions

Several things remain unclear. The exploit’s real-world success rate is not independently verified; the documentation itself describes it as flaky at both the browser and kernel stages, and no third-party testing results were included in the release. It is not yet clear whether current firmware versions above 13.60 are affected, or whether the underlying WebKit and kernel flaws were already patched in newer system software.

Whether Sony will respond with a firmware update, and how quickly, is unknown. The practical capabilities enabled by the exploit beyond the documented ELF loader — such as persistent custom firmware or backup loading — have not been demonstrated in the release materials and should not be assumed. The relationship between the stated firmware ceiling of 13.60 and the currently latest PS5 system software was not explained in the documentation.

Expected Responses from Sony and Researchers

The likely next developments follow a familiar pattern. Sony can be expected to investigate and patch the underlying WebKit and kernel vulnerabilities in a future system update, as it has done with prior public exploits. Users who want to keep the exploit available typically refrain from updating, which cuts them off from the PlayStation Network and newer software.

On the research side, the release of working primitives usually prompts community tooling, improved stability patches, and ports to other firmware versions. Independent verification of the exploit’s reliability, and any demonstration of what kernel access enables in practice, would clarify its actual significance in the weeks ahead.

Key Questions

What is the PS5 Relapse exploit?

Relapse is a publicly released two-stage exploit chain for the PlayStation 5. According to its GitHub documentation, it uses a WebKit browser vulnerability to corrupt memory and then a kernel race condition to gain kernel read/write access on consoles running firmware 7.00 through 13.60.

Which PS5 firmware versions are affected?

The documentation states supported firmware ranges from 7.00 through 13.60. Whether versions above 13.60 are affected has not been established.

Is the exploit reliable?

No. The authors themselves warn that the browser stage may need multiple attempts and that the kernel stage may hang or panic the console, requiring a reboot and retry.

The project’s disclaimer frames it as educational and research-only, for devices you own or are authorized to test. However, running it may violate Sony’s terms of service, and the authors explicitly warn of possible account bans, data loss, and system instability.

Will this lead to homebrew or pirated games on the PS5?

That is not demonstrated by the release. The documentation only confirms kernel read/write access and an ELF loader on port 9021. Any further capabilities remain unverified and should not be assumed.

Source: hn

FALL

Fall Picks

As an affiliate, we earn on qualifying purchases.

You May Also Like

Vint Cerf, “father of the Internet”, is retiring

Vint Cerf, a pioneering figure in internet development, has announced his retirement, ending a career that shaped modern digital communication.

Mumbai Chef: Junk Food Simulator

A Mumbai-based chef has launched a ‘Junk Food Simulator’ game aimed at raising awareness about unhealthy eating habits among youth.

Ukrainian studio Flexus Games announced a cooperative game Dear Passengers about working for the worst airline in the world

Ukrainian studio Flexus Games reveals Dear Passengers, a cooperative game about working for the worst airline in the world, set to attract fans of quirky simulations.

Microsoft to cut thousands of jobs in upcoming redundancy round

Microsoft is preparing to lay off over 5,000 employees in a new cost-cutting measure, marking one of its largest layoffs in recent years.